_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9.0 has a heap-based buffer overflow when the digest final function sets a large count value. It is recommended to upgrade to 1.9.1 or later.
2021-01-29T15:15:13.083
2024-11-21T06:21:20.643
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | gnupg | libgcrypt | 1.9.0 | Yes |
Application | oracle | communications_billing_and_revenue_management | 12.0.0.3.0 | Yes |